CVE-2018-3613

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
27/03/2019
Last modified:
07/11/2023

Description

Logic issue in variable service module for EDK II/UDK2018/UDK2017/UDK2015 may allow an authenticated user to potentially enable escalation of privilege, information disclosure and/or denial of service via local access.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:tianocore:edk_ii:udk2015:*:*:*:*:*:*:*
cpe:2.3:a:tianocore:edk_ii:udk2017:*:*:*:*:*:*:*
cpe:2.3:a:tianocore:edk_ii:udk2018:*:*:*:*:*:*:*